Cloud services and on-premises products should generate, and cloud services store, security-relevant logs without extra charge and log security events by default, which may call for review of what is logged, configuration, retention period, integrity and storage protection and analysis, and sometimes a rework of the log architecture with incident response experts.
The graph holds this control, the 0 it maps to, and the evidence behind each claim, over MCP and REST.